I have a file protected with VMProtector. There are some functions wich is virtualized and there is 2 files (1 exe and 1 dll) files bundled/boxed into main exe.
What I need is:
- File have to be fully unpacked and functional ( reconstructed IAT, EAT etc... )
- All functions which are virtualized with VM macros must be transformed to real x86 code which can be later analyzed
- All encrypted strings should be decrypted
- The boxed virtual exe and dll files must be extracted and reconstructed (must be run outside of the main exe)
Please bid only if you have experience with things like this. Message me and i will provide a download link for the file. Once you get this job done, we will have few other projects (VMprotect/Themida) in the future.
Hi, I can try to unprotect VMProtect, though I can't guarantee you 100% success (actually no one can). I have experience with RE of protectors for around 10 years. If you are interested we can try.
Dear sir,
I'd like to apply your job because I have experiences in unpack and disassem of Windows application.
By now, I need to get a glance of the exe you have.
Looking for your reply,
Thanks.
How are you?
I have good skill of Reversing.
Themida unprotect is my major technique.
I can find OEP about VMProtect. But I haven't confirm about IAT fix.
Thanks.